
Aug 4, 2026
1.0.0
ThreatQ Versions >= 6.5.0
TruKno CDF
Overview
The TruKno CDF integration imports breach intelligence from TruKno into ThreatQ, enabling organizations to centralize breach reports and the associated threat context within a single platform. During ingestion, the integration retrieves breach summaries, collects the full details for each breach, and creates ThreatQ reports enriched with related indicators, vulnerabilities (including CVEs), MITRE ATT&CK attack patterns, adversaries, malware, tools, and additional contextual attributes. This enables analysts to correlate breach intelligence with existing ThreatQ data and accelerate investigation and response activities.
The integration provides the following feed:
- TruKno Breaches - imports TruKno breach reports and their associated threat intelligence.
The integration ingests the following ThreatQ objects:
- Adversaries
- Adversary Attributes
- Attack Patterns
- Indicators
- Malware
- Reports
- Report Attributes
- Tools
- Tool Attributes
-
Vulnerabilities